Cyberus Linux Security Tracker
This is the security tracker for Cyberus Linux. It allows monitoring the status of vulnerabilities that affect Cyberus Linux releases. Vulnerabilities are ingested from official sources, such as NVD and others.
For general information about installing or upgrading Cyberus Linux, refer to the documentation. We are eager to hear your feedback and suggestions for this security tracker. Channels to reach us are documented here.
Releases
These are the currently supported releases.
Latest Events
CVE-2026-39919
Cyberus Linux 26.05
ghostscript
Ghostscript < 10.08.0 Heap Buffer Overflow via JPEG 2000 Output Adapter
2026-09-25 23:40 CEST
In Progress → Resolved
CVE-2026-39919
Cyberus Linux 26.05
ghostscript
Ghostscript < 10.08.0 Heap Buffer Overflow via JPEG 2000 Output Adapter
2026-09-25 23:36 CEST
New → In Progress
CVE-2026-39919
Cyberus Linux 26.05
ghostscript
Ghostscript < 10.08.0 Heap Buffer Overflow via JPEG 2000 Output Adapter
2026-09-25 23:34 CEST
New
CVE-2026-82560
Cyberus Linux 26.05
perl
Pod::Text versions before 6.1.1 for Perl allow CPU and memory exhaustion formatting a POD document whose =over nesting drives the margin to the output width
2026-09-25 19:24 CEST
New → Plausible
CVE-2026-82560
Cyberus Linux 26.05
perl
Pod::Text versions before 6.1.1 for Perl allow CPU and memory exhaustion formatting a POD document whose =over nesting drives the margin to the output width
2026-09-25 19:23 CEST
New
CVE-2026-18938
Cyberus Linux 26.05
p11-kit
P11-kit: integer overflow in rpc attribute-array length calculation can under-allocate nested attribute storage on 32 bit systems
2026-09-25 19:04 CEST
Plausible
CVE-2026-18938
Cyberus Linux 26.05
p11-kit
P11-kit: integer overflow in rpc attribute-array length calculation can under-allocate nested attribute storage on 32 bit systems
2026-09-25 19:04 CEST
New → Plausible
CVE-2026-18938
Cyberus Linux 26.05
p11-kit
P11-kit: integer overflow in rpc attribute-array length calculation can under-allocate nested attribute storage on 32 bit systems
2026-09-25 19:04 CEST
New
GHSA-7fq3-xxgp-r83j
Cyberus Linux 26.05
p11-kit
Stack exhaustion via unbounded recursion in nested attribute template parsing
2026-09-25 19:02 CEST
Plausible
GHSA-p58f-9548-mpm2
Cyberus Linux 26.05
virtualenv
virtualenv bash and fish activation scripts execute commands embedded in paths
2026-09-25 18:55 CEST
New → Plausible
GHSA-94p9-xgh2-xp45
Cyberus Linux 26.05
virtualenv
Downloaded seed wheels (pip/setuptools) are not integrity-checked before use
2026-09-25 18:54 CEST
New → Plausible
GHSA-9h9j-4vrj-gf7g
Cyberus Linux 26.05
virtualenv
virtualenv writes prompt values into pyvenv.cfg without sanitizing line boundaries, allowing configuration injection
2026-09-25 18:50 CEST
New → Plausible
GHSA-597g-3phw-6986
Cyberus Linux 26.05
virtualenv
TOCTOU Vulnerabilities in Directory Creation
2026-09-25 18:46 CEST
New → Resolved
GHSA-cr7x-863j-xrc7
Cyberus Linux 26.05
s2n-tls
QUIC Transport Parameters Memory Leak During HelloRetryRequest in s2n-tls
2026-09-25 18:38 CEST
New → Resolved
GHSA-684c-v35q-fvx7
Cyberus Linux 26.05
s2n-tls
Silent Drop of TLS 1.3 Encrypted Records in s2n-tls
2026-09-25 18:38 CEST
New → Resolved
GHSA-h667-qrp8-gj58
Cyberus Linux 26.05
net-tools
Stack Buffer Overflow in net-tools (parse_hex)
2026-09-25 18:35 CEST
New → Plausible
GHSA-w7jq-cmw2-cq59
Cyberus Linux 26.05
net-tools
Stack-based Buffer Overflow in net-tools (proc_gen_fmt)
2026-09-25 18:33 CEST
New → Plausible
GHSA-pfwf-h6m3-63wf
Cyberus Linux 26.05
net-tools
Stack-based Buffer Overflow in net-tools (get_name)
2026-09-25 18:33 CEST
New → Resolved
GHSA-pfwf-h6m3-63wf
Cyberus Linux 26.05
net-tools
Stack-based Buffer Overflow in net-tools (get_name)
2026-09-25 18:32 CEST
New
GHSA-jmr4-g2hv-mjj6
Cyberus Linux 26.05
cloud-hypervisor
Host File Exfiltration via QCOW Backing File Abuse
2026-09-25 18:30 CEST
New → Resolved
GHSA-f47p-p25q-83rh
Cyberus Linux 26.05
cloud-hypervisor
Use-after-free in virtio-block Async I/O Completion
2026-09-25 18:30 CEST
New → Resolved
GHSA-p2gh-cfq4-4wjc
Cyberus Linux 26.05
protobuf_33
A potential Denial of Service issue in protobuf-php
2026-09-25 18:28 CEST
New → Resolved
GHSA-8qvm-5x2c-j2w7
Cyberus Linux 26.05
protobuf_33
A potential Denial of Service issue in protobuf-python
2026-09-25 18:27 CEST
New → Resolved
GHSA-gc5v-m9x4-r6x2
Cyberus Linux 26.05
python3Packages.requests
Insecure Temp File Reuse in extract_zipped_paths()
2026-09-25 18:24 CEST
New → Resolved
GHSA-5rjg-fvgr-3xxf
Cyberus Linux 26.05
python3Packages.setuptools
Path traversal in PackageIndex.download leads to Arbitrary File Write
2026-09-25 18:22 CEST
New → Resolved
GHSA-7jxr-4j3g-p34f
Cyberus Linux 26.05
libtpms
Return of wrong initialization vector when certain symmetric ciphers are used
2026-09-25 18:14 CEST
New → Resolved
GHSA-25w5-6fjj-hf8g
Cyberus Linux 26.05
libtpms
Possible out-of-bound access and abort due to HMAC signing issue leading to vTPM DoS
2026-09-25 18:14 CEST
New → Resolved
GHSA-qmgc-5h2g-mvrw
Cyberus Linux 26.05
python3Packages.filelock
Time-of-Check-Time-of-Use (TOCTOU) Symlink Vulnerability in SoftFileLock
2026-09-25 18:13 CEST
New → Resolved
GHSA-xvjw-fjq5-68hf
Cyberus Linux 26.05
aws-c-event-stream
Memory Corruption in event-stream parsing of headers
2026-09-25 18:12 CEST
New → Resolved
GHSA-rmjr-3qpm-vh98
Cyberus Linux 26.05
aws-c-http
Heap double-free in HPACK dynamic table
2026-09-25 18:11 CEST
New → Resolved